Malware

Midie.70331 removal guide

Malware Removal

The Midie.70331 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Midie.70331 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Midie.70331?


File Info:

crc32: 18BD5EA4
md5: 186a05e5596ec34fa150eed14b3b3414
name: 186A05E5596EC34FA150EED14B3B3414.mlw
sha1: 1341516901f32e948ca53f815a981527197d64c1
sha256: 83c49c846e3c5d3a390b637de15618ca3ca8eb6f9f45f0de2667e73647305c93
sha512: 6df54c25dda01e184050e7e6220205329cd676ea3f964d40b4ef9dbe27b016d7d5939536d242ef61167c2708455c557c45ef4ebee50c7867be08854cf10cebee
ssdeep: 6144:4euvWSo2X0apjVu+Hb870nMMm96/KnbSdUfiG0q280eAqRtzz35:Ivx/pjVe75My6IseXtzJ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: LIST_VIEW_DATA_GRID
FileVersion: 1.0.0.0
CompanyName: dkp Software Ltd.
Comments: List View Report Grid Control [ Developed By : Divyen Patel ]
ProductName: LIST_VIEW_DATA_GRID
ProductVersion: 1.0.0.0
OriginalFilename: LIST_VIEW_DATA_GRID.exe

Midie.70331 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0054f5ea1 )
Elasticmalicious (high confidence)
DrWebTrojan.Inject3.34297
ClamAVWin.Dropper.TrickBot-7577793-0
CAT-QuickHealTrojan.Mansabo
McAfeeGenericRXLE-ZI!186A05E5596E
CylanceUnsafe
ZillyaTrojan.Mansabo.Win32.1675
SangforTrojan.Win32.VBInject.BS
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaMalware:Win32/km_27aa3.None
K7GWTrojan ( 0054f5ea1 )
Cybereasonmalicious.5596ec
CyrenW32/Ursu.DG.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.EKJR
APEXMalicious
AvastWin32:BankerX-gen [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Mansabo.vho
BitDefenderGen:Variant.Midie.70331
NANO-AntivirusTrojan.Win32.Inject3.gywgdj
ViRobotTrojan.Win32.Trickbot.368640.B
MicroWorld-eScanGen:Variant.Midie.70331
TencentWin32.Trojan.Mansabo.Dygw
Ad-AwareGen:Variant.Midie.70331
SophosMal/Generic-S
ComodoTrojWare.Win32.Mansabo.EIH@8nv3tw
BitDefenderThetaGen:NN.ZevbaF.34266.wm0@aSYUSIhQ
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0DF721
McAfee-GW-EditionBehavesLike.Win32.Generic.fc
EmsisoftGen:Variant.Midie.70331 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Mansabo.asv
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Generic.ASMalwS.2FE9796
MicrosoftTrojan:Win32/VBInject.BS!MTB
SUPERAntiSpywareTrojan.Agent/Gen-Midie
GDataGen:Variant.Midie.70331
TACHYONTrojan/W32.VB-Mansabo.368640.C
AhnLab-V3Trojan/Win32.Inject.C3980567
Acronissuspicious
VBA32Trojan.Mansabo
MAXmalware (ai score=80)
MalwarebytesTrojan.TrickBot
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DF721
YandexTrojan.GenAsa!Ocqa1ecviuo
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.74816244.susgen
FortinetW32/GenKryptik.EFAY!tr
AVGWin32:BankerX-gen [Trj]
Paloaltogeneric.ml

How to remove Midie.70331?

Midie.70331 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment